Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
pqwy
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
pqwy
11y ago
This is more of an attempt to give little background on RNG problems in a security context, and a description of how MirageOS' crypto stack deals with RNG, with an emphasis on entropy harvesting.
2.
▲
by
pqwy
12y ago
No, or at least not yet. :) You are probably thinking of these guys: http://www.mitls.org . They have a killer TLS, but it drags the entire CLR in. We are these guys: http://openmirage.org/blog/introducing-oc
3.
▲
by
pqwy
12y ago
Nope, not yet. ;_;
4.
▲
by
pqwy
12y ago
... back.
5.
▲
by
pqwy
12y ago
Because I'm looking at GBs of SYNs scrolling down the terminal.
6.
▲
by
pqwy
12y ago
Syn flood...
7.
▲
by
pqwy
12y ago
Update: DDoS, SYN flood. Stay tuned...
8.
▲
by
pqwy
12y ago
Why do you think this creates malleability? PKCS1.5 stripping takes away the leading 0x00 0x01 0xff ... 0x00 -- if this prefix is not present, it fails. The rest goes through the RSA tranform, and is parsed as PKCS1 DigestInfo, an ASN.1 str
9.
▲
by
pqwy
12y ago
Hah, and I wondered how come we suddenly started getting MITM connections from several places. FWIW you can also do it with a single socat invocation, but I'll leave the exact command as an exercise for the reader.
10.
▲
by
pqwy
12y ago
Aaah, but you can try to do soooo much more! You can try to confuse the ASN.1 parser, or even the protocol level parser. You can try to defeat certificate validation logic. You can try to get handshake state-machine do an illegal transition
11.
▲
by
pqwy
12y ago
Sounds like a nice exercise, I'll try it. But since by and large the lines we have are expression and not statements (the core handler is purely functional, using a monad to thread errors through), this amounts to type errors immediate
12.
▲
by
pqwy
12y ago
That is exactly the question we have. And yes, the primitives are in C largely due to timing concerns.
13.
▲
by
pqwy
12y ago
It concerns us too. Right now the entropy in Xen domains is weak, but we are working with the rest of the team to feed some actual environmental noise to keep Fortuna well-fed. You can also run the library on Unix, of course, and there the
14.
▲
by
pqwy
12y ago
Hey, (Disclaimer: one of the authors) We randomize the connection parameters on each connect to help us gauge the stack's behavior with various combinations (see https://github.com/mirleft/ocaml-tls/issues